Skip to content

Bump OpenTelemetry.Exporter.OpenTelemetryProtocol from 1.15.3 to 1.16.0#69

Merged
blehnen merged 1 commit into
mainfrom
dependabot/nuget/src/FrigateRelay.Host/OpenTelemetry.Exporter.OpenTelemetryProtocol-1.16.0
Jul 4, 2026
Merged

Bump OpenTelemetry.Exporter.OpenTelemetryProtocol from 1.15.3 to 1.16.0#69
blehnen merged 1 commit into
mainfrom
dependabot/nuget/src/FrigateRelay.Host/OpenTelemetry.Exporter.OpenTelemetryProtocol-1.16.0

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Jun 15, 2026

Copy link
Copy Markdown
Contributor

Updated OpenTelemetry.Exporter.OpenTelemetryProtocol from 1.15.3 to 1.16.0.

Release notes

Sourced from OpenTelemetry.Exporter.OpenTelemetryProtocol's releases.

1.16.0

For highlights and announcements pertaining to this release see: Release Notes > 1.16.0.

The following changes are from the previous release 1.16.0-rc.1.

... (truncated)

1.16.0-rc.1

The following changes are from the previous release 1.15.3.

  • NuGet: OpenTelemetry v1.16.0-rc.1

    • Stop validating View-provided metric stream Name against the instrument
      name syntax, per
      spec clarification.
      (#​7300)

    • Fix incorrect validation of OTEL_BSP_* and OTEL_BLRP_* environment
      variables.
      (#​7187)

    • Fix observable instrument callbacks running once per reader instead of
      once per collection cycle.
      (#​7188)

    • Added exception safety for user-supplied ExemplarReservoir implementations.
      Exceptions thrown from Offer are now caught and logged rather than propagating
      out of Counter.Add/Histogram.Record.
      (#​7277)

    • Update OpenTelemetrySdkEventSource to support the W3C randomness flag.
      (#​7301)

    • Added ObservedTimestamp property to LogRecord.
      (#​6979)

    • Breaking Change Explicit histogram boundaries no longer allow more than
      10 million values.
      (#​7165)

    • Fixed a circular reference which could cause a LoggerProvider to fail to
      resolve when one of its dependencies depends on ILogger or ILoggerFactory.
      As part of this fix the LoggerProvider resolved from dependency injection
      is now created lazily when the first logger is created rather than when
      ILoggerProvider or ILoggerFactory is resolved. A consequence is that any
      invalid configuration now surfaces when the first log record is written instead
      of when the logging services are resolved.
      (#​7308)

    See CHANGELOG for details.

  • NuGet: OpenTelemetry.Api v1.16.0-rc.1

    • Experimental (pre-release builds only):
      Add support for using environment variables as context propagation carriers.
      (#​7174)

    • Fix BaggagePropagator to correctly follow Key and Value Encoding rules as per
      ... (truncated)

1.16.0-beta.1

The following changes are from the previous release 1.15.3-beta.1.

  • NuGet: OpenTelemetry.Exporter.Prometheus.AspNetCore v1.16.0-beta.1

    • Fixed scrape response cache freshness using monotonic time so it is not
      affected by NTP system clock adjustments.
      (#​7253)

    • Breaking Change Removed DisableTimestamp property from
      PrometheusAspNetCoreOptions.
      (#​7176)

    • Fixed the serialization of NaN, PositiveInfinity, and NegativeInfinity
      values in Prometheus metrics to be compliant with the specification.
      (#​7179)

    • Fixed loss of precision when serializing double and float values in
      Prometheus metrics to be compliant with the specification by using 17
      significant digits to represent such values.
      (#​7179)

    • Fix non-ASCII characters in metric names and unit strings not being sanitized
      correctly during Prometheus serialization.
      (#​7184)

    • Fix case where reader tracking could be reset while readers were still active.
      (#​7190)

    • Improve Accept header handling for format negotiation so OpenMetrics is
      selected correctly by considering whitespace and q weights.
      (#​7208)

    • Emit OpenMetrics exemplars for counters and histogram buckets.
      (#​7222)

    • Fix incorrect handling of untyped metrics when using OpenMetrics format.
      (#​7219)

    • Fix Prometheus/OpenMetrics serialization to emit metric and label names
      containing _ instead of dropping them and prefixing leading digits.
      Invalid characters are replaced with _ instead of being dropped.
      (#​7209)

    • Add escaping=underscores to the Accept header handling for content
      negotiation so OpenMetrics are handled correctly.
      (#​7209)

    • Omit histogram _sum and _count in OpenMetrics when negative bucket
      thresholds are present.
      (#​7221)
      ... (truncated)

Commits viewable in compare view.

@dependabot dependabot Bot added .NET Pull requests that update .NET code dependencies Pull requests that update a dependency file labels Jun 15, 2026
@codecov

codecov Bot commented Jun 15, 2026

Copy link
Copy Markdown

Codecov Report

✅ All modified and coverable lines are covered by tests.
✅ Project coverage is 91.52%. Comparing base (a42b34a) to head (c3feced).
⚠️ Report is 1 commits behind head on main.

Additional details and impacted files
@@           Coverage Diff           @@
##             main      #69   +/-   ##
=======================================
  Coverage   91.52%   91.52%           
=======================================
  Files          61       61           
  Lines        1864     1864           
  Branches      305      305           
=======================================
  Hits         1706     1706           
  Misses         82       82           
  Partials       76       76           

☔ View full report in Codecov by Harness.
📢 Have feedback on the report? Share it here.

🚀 New features to boost your workflow:
  • ❄️ Test Analytics: Detect flaky tests, report on failures, and find test suite problems.

@blehnen

blehnen commented Jul 4, 2026

Copy link
Copy Markdown
Owner

@dependabot rebase

---
updated-dependencies:
- dependency-name: OpenTelemetry.Exporter.OpenTelemetryProtocol
  dependency-version: 1.16.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot
dependabot Bot force-pushed the dependabot/nuget/src/FrigateRelay.Host/OpenTelemetry.Exporter.OpenTelemetryProtocol-1.16.0 branch from a7bc7d4 to c3feced Compare July 4, 2026 21:02
@sonarqubecloud

sonarqubecloud Bot commented Jul 4, 2026

Copy link
Copy Markdown

@blehnen
blehnen merged commit ee66571 into main Jul 4, 2026
10 of 11 checks passed
@dependabot
dependabot Bot deleted the dependabot/nuget/src/FrigateRelay.Host/OpenTelemetry.Exporter.OpenTelemetryProtocol-1.16.0 branch July 4, 2026 21:04
blehnen added a commit that referenced this pull request Jul 5, 2026
…nce 10.7.0 (#76)

Reapplies the dependency bumps from Dependabot PR #67, which went stale after
the surrounding dependency PRs (#64/#68/#69/#70) merged and could no longer be
rebased automatically — @dependabot rebase/recreate stopped responding. This
re-creates the identical version set on a fresh branch off current main:

  Microsoft.Extensions.* 10.0.8 -> 10.0.9  (12 packages)
  Microsoft.Extensions.Http.Resilience 10.6.0 -> 10.7.0

Intentionally-older sample pins (10.0.0 / 10.0.4) are left untouched, matching
#67's scope. Supersedes #67.

Co-authored-by: Claude Opus 4.8 (1M context) <noreply@anthropic.com>
blehnen added a commit that referenced this pull request Jul 23, 2026
…y sweep (#90)

* build(deps): bump microsoft-extensions group to 10.0.9 / Http.Resilience 10.7.0

Reapplies the dependency bumps from Dependabot PR #67, which went stale after
the surrounding dependency PRs (#64/#68/#69/#70) merged and could no longer be
rebased automatically — @dependabot rebase/recreate stopped responding. This
re-creates the identical version set on a fresh branch off current main:

  Microsoft.Extensions.* 10.0.8 -> 10.0.9  (12 packages)
  Microsoft.Extensions.Http.Resilience 10.6.0 -> 10.7.0

Intentionally-older sample pins (10.0.0 / 10.0.4) are left untouched, matching
#67's scope. Supersedes #67.

Co-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>

* fix(build): pin patched Scriban + clear SonarCloud code smells

The WireMock.Net bump on this branch pulls a transitive Scriban.Signed
7.2.0, which carries two moderate advisories (GHSA-6q7j-xr26-3h2c /
GHSA-q6rr-fm2g-g5x8). With NuGet audit + TreatWarningsAsErrors the NU1902
warning fails the Release build across every test project.

Build fix:
- tests/Directory.Build.props: central transitive pin Scriban.Signed 7.2.1
  (patched), chained to the repo-root props via explicit parent import.
- Host.Tests: align WireMock.Net 2.9.0 -> 2.10.0 with the other projects.

SonarCloud sweep (behavior preserved; all unit tests green):
- Cognitive complexity (S3776): extract ProcessItemAsync/RunValidatorsAsync,
  EnsureConnectedAsync, ValidateNames pass, DispatchMatchedSubscriptionAsync,
  TryParseNdjsonLine.
- S3267 x7: fold filter loops into LINQ Where/Select in StartupValidation.
- S907/S1116: replace goto+label with continue in the dispatcher.
- S125/S1066/S108/S3358/S6966/S927/S3903/S4487: prose rewords, merged
  conditionals, documented empty catches, ternary extraction, await
  WriteLineAsync, ct rename, namespaced Log, options use.
- S2699 x3 (BLOCKER): explicit enqueue-count assertions in EventPumpDispatchTests.

Review follow-ups (CodeRabbit + Sonar PR analysis on #90):
- FrigateMqttEventSource: track subscription health separately from TCP
  connectivity so a SUBACK denial re-subscribes instead of getting stuck until
  the socket drops (+2 regression tests).
- Reconciler.TryParseNdjsonLine: guard non-string JSON fields and use
  DateTimeOffset.TryParse so a malformed NDJSON line is skipped, not fatal.
- check-doc-samples.sh: keep ::error:: annotations on stdout (revert the
  S7677 stderr redirect — GitHub requires stdout for annotation commands).
- docs/plugin-author-guide.md: sync the Program.cs fence with the sample
  (await WriteLineAsync + namespaced Log) so the doc-sample gate passes.
- StartupValidation.ValidateNames: drop unnecessary casts + null-forgiving
  (S1905/S8970) by iterating with a shared helper.

Not code-changed (accepted in SonarCloud as by-design/false-positive): the
per-plugin TLS opt-in S4830 x4, localhost health-poll S5332, two S107
DI/interface signatures, S2325 interface-member false positives, docker
S8431 tag+digest pins, and idiomatic out-param null-forgiving (S8970).

Co-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>

---------

Co-authored-by: Claude Opus 4.8 (1M context) <noreply@anthropic.com>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file .NET Pull requests that update .NET code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant